Video summary

How I Would Learn Cybersecurity If I Could Start Over In 2026

Main summary

Key takeaways

Educational

Main ideas / concepts conveyed

  • Cybersecurity is a career path Rick says he successfully entered after engineering work, and he frames his advice as the steps he would repeat if he started over.
  • Credentialing matters for career entry and advancement, and he recommends a structured certification path through ISC².
  • Learning cybersecurity requires immersion in current information and terminology, plus the mindset that early confusion is normal.
  • For long-term job access and credibility, he positions CISSP as a “premium” certification that many employers seek.

Methodology / step-by-step instructions

1) Start with the Certified in Cybersecurity (CC) certification (ISC²)

Why start here

  • It is an entry-level certification.
  • It is part of a path toward the internationally recognized “premium” certification in cybersecurity (CISSP).

Who it fits

  • People changing careers
  • Recent college graduates
  • IT professionals aiming to break into cybersecurity, improve skills, and increase earning potential

What the exam covers (5 domains)

  1. Security principles
    • Core concepts such as the CIA triad (and referenced “opposite of that” / likely control concepts)
    • Security controls
    • Cybersecurity frameworks
    • Risk and other fundamentals
  2. Business continuity, disaster recovery, and incident response
  3. Access control concepts
    • Includes references to RBAC and types of access/security controls
    • Presented as important for keeping data private
    • Also described as a building block for later certifications
  4. Network security
  5. Security operations

Exam format and scoring

  • 2 hours
  • 100 questions
  • 70% required to pass
  • Computer adaptive testing (CAT)
    • The computer adapts question difficulty/focus based on your prior answers
    • If you miss or struggle in a domain, the system may ask more questions in that domain

2) Immerse yourself in cybersecurity (learn the language + keep up with news)

How to immerse

  • Consume information and news regularly via:
    • YouTube channels (he suggests subscribing to his channel)
    • Hacker News
    • SecurityWeek

Why immersion works (his reasoning)

  • You’ll repeatedly encounter cybersecurity terms and language.
  • When you don’t understand something, you should:
    • Look it up
    • Try to understand what it means and how it’s used
  • He emphasizes a learning principle:
    • Like learning tennis, cybersecurity will feel awkward and unfamiliar at first
    • With practice, time, and not giving up, you improve (even if you never become “great” immediately)

3) After gaining some experience, pursue CISSP (ISC²)

Why CISSP next

  • CISSP is described as the premium certification in cybersecurity.
  • He claims it is commonly required for many cybersecurity jobs.
  • He cites CyberSeek: about 82,000 US jobs require CISSP (as stated in the video).
  • He also claims it is associated with high pay and industry respect.

CISSP exam domains (8)

  1. Security and risk management
    • Risk processes, identifying and mitigating risk
  2. Asset security
    • Protecting data/information and also physical assets
  3. Security architecture and engineering
    • Architect and engineer systems for confidentiality, integrity, and availability
    • Maintain CIA-triad balance, and ensure authorized access
  4. Communication and network security
  5. Identity and access management
  6. Security assessment and testing
    • How to test systems for security
  7. Security operations
  8. Software development security

Exam format and scoring

  • 3 hours
  • 100–150 questions (variable)
  • If you do well, testing may stop at about 100; he personally took 150
  • 70% passing threshold
  • Uses computer adaptive testing similarly to the CC exam (recent answers affect what comes next)

Additional learning resource

  • He directs viewers to a link in the description: “11 essentials for passing the CISSP exam”
  • He claims these “11 essentials” also apply to passing the CC exam (Certified in Cybersecurity)

Speakers / sources featured (identified)

Speaker

  • Dr. Rick Sturvant (also referred to as Rick, host; “Rick Talks Tech”)

Organizations / referenced sources

  • ISC² (publisher of Certified in Cybersecurity (CC) and CISSP)
  • CyberSeek (cited for job requirement numbers)
  • Hacker News (news source recommended)
  • SecurityWeek (news source recommended)
  • YouTube (platform recommended; includes his channel)

Original video